17 часов назад
Senior Manager - Incident Response (CPX)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Manager - Incident Response (CPX) (Cybersecurity): Leading incident response, digital forensics, threat hunting, and DFIR service operations for an on-site VIP customer with an accent on large-scale investigations, network and host forensics, and defensive security leadership. Focus on coordinating crisis response under PICERL/NIST standards, managing rotating team operations and on-call coverage, and developing forensic capabilities.
Location: MBZ City, Abu Dhabi, United Arab Emirates; on-site work for a VIP customer. The role requires flexibility for team shift coverage from 6:00 AM to 2:00 PM and from 2:00 PM to 10:00 PM, plus a one-week on-call rotation every two months.
Company
operates a high-impact cyber defence environment supporting operationally critical customer security operations.
What you will do
- Lead the Incident Response and Forensics Team, covering people management and operational delivery.
- Coordinate and execute large-scale incident response engagements, investigations, remediation, and recovery using PICERL/NIST processes.
- Lead threat hunting, proactive environment assessments, SOC activities, and defensive security projects, including the DFIR Lab.
- Direct host, network, digital systems, and mobile forensic investigations across multiple platforms.
- Act as the technical escalation point for crisis management and communicate findings, reports, and recommendations to technical and non-technical stakeholders.
- Develop team capabilities, coordinate knowledge-sharing sessions, and drive service improvement and threat research.
Requirements
- At least 10 years of IT security or security infrastructure experience.
- At least 6 years in incident response, CERT, CSIRT, SOC, or equivalent blue-team roles, including 4 years managing incident response teams.
- Mandatory previous experience in digital forensics and strong knowledge of blue-team operations, threat hunting, network protocols, and network forensics.
- Expertise in Microsoft Windows and strong knowledge of Linux and OSX, with forensic experience across multiple operating systems.
- Proven experience applying PICERL/NIST incident response standards and producing accurate technical reports.
- Strong spoken and written English is required, along with availability for on-site work, rotating team coverage, and on-call duty.
Nice to have
- Scripting skills in Shell, Python, or PowerShell.
- At least three relevant certifications, such as CISSP, GCIH, GCFA, GNFA, GCFE, OSCP, GREM, or GDAT.
- Bachelor’s or master’s degree in computer science or information security.
Culture & Benefits
- Operationally critical cyber defence work supporting a VIP customer.
- Leadership responsibility for building a team culture based on trust, respect, appreciation, flexibility, and unity.
- Opportunities to lead research, improve DFIR services, share knowledge, and develop team talent.
- Flexible scheduling adapted to changing incident response situations, including rotating team coverage and on-call responsibility.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →